Warning: fopen(/home/rachdian/public_html/2008/old/cache/rss20.xml) [function.fopen]: failed to open stream: No such file or directory in /home/rachdian/public_html/2008/old/includes/feedcreator.class.php on line 685

Error creating feed file, please check write permissions.
Saturday, September 04 2010
Home
Photos Gallery
Guest Book
Links
Hot Info
Index
Latest Info
Jobs Info
IT/IS - Security
Education
Photo Stories (Photoblog)
Travelling Stories
About Me & Site
For Geek Family Only
About Me...
Diary
Contact Me
The Page Rank
Tools
Search Keyword
Check Domain!
Appreciate to this site?
Add to Technorati Favorites
Top 3 News
Subscribe with Bloglines
Info / Berita Terkait
KampungBlog.com - Kumpulan Blog-Blog Indonesia   Indonesia To Blog -Top Site
   PageRank Checker
Home arrow Index arrow IT/IS Security & Vulnerability arrow VRT Certified Rules Update 2006-12-12
VRT Certified Rules Update 2006-12-12 Print
User Rating: / 0
PoorBest 
Written by snort.org   
Wednesday, 13 December 2006
The VRT is aware of vulnerabilities affecting the Microsoft Operating System and has introduced new rules to provide coverage for exploitation attempts targeting these vulnerabilities.

Details:
Microsoft Security Bulletin MS06-078:
A vulnerability in the way that Microsoft Windows Media Player handles Advanced Systems Format (ASF) files may allow a remote attacker to execute code of their choosing on an affected system.


A rule to detect attacks targeting this vulnerability is included in this release and is identified as SID 9625.

Microsoft Security Bulletin MS06-077:
Microsoft Remote Installation Services (RIS) suffers from a programming error that may allow an attacker to upload files of their choosing onto the TFTP server; the files may then be installed onto machines using the service.

A rule to detect attacks targeting this vulnerability is included in this release and is identified as SID 9638.

Microsoft Security Bulletin MS06-076:
Microsoft Outlook Express does not correctly handle malformed Windows Address Book files. A remote attacker may be able to execute code of their choosing by supplying a specially crafted address book file to be read on a vulnerable host.

A rule to detect attacks targeting this vulnerability is included in this release and is identified as SID 9639.

Rules that may also indicate attacks targeting this vulnerability were previously released and are identified as SIDs 6412 and 6413.

Microsoft Security Bulletin MS06-074:
A vulnerability in the Microsoft SNMP service may allow a remote attacker to execute code of their choosing on a vulnerable system by supplying a malformed SNMP request to the service.

Rules to detect attacks targeting this vulnerable service were previously released and are identified as SIDs 1411 through 1414.

Microsoft Security Bulletin MS06-073:
Microsoft Visual Studio uses a WMI Wizard that does not correctly handle malformed WMI objects. This may allow a remote attacker to execute code of their choosing on a vulnerable host via a specially crafted web page.

Rules to detect attacks targeting this vulnerability were previously released and are identified as SIDs 8369 and 8370.

Advisory:
A detailed advisory as well as a complete list of modified and deleted rules is available at
http://www.snort.org/rules/advisories/vrt-rules-2006-12-12.html

Comments

Write Comment
Name:Guest
Title:
BBCode:Web AddressEmail AddressBold TextItalic TextUnderlined TextQuoteCodeOpen ListList ItemClose List
Comment:



This image contains a scrambled text, it is using a combination of colors, font size, background, angle in order to disallow computer to automate reading. You will have to reproduce it to post on my homepage Enter what you see: *
tips: hit Reload page before writing a text if you have difficulty reading characters in image

Last Updated ( Sunday, 17 December 2006 )


© Copyright 2005, Adhi Rachdian.
URL: http://adhi.rachdian.com, http://rachdian.com, http://adhi.pacific.net.id, http://rachdian.pacific.net.id or http://blog.rachdian.com